Search

OSINT

120 skills found, page 2.
Search results
#SkillRepositoryStarsUsed inTokensAuto-checkLicenceUpdated
49

Build threat actor profiles by collecting OSINT from vendor reports, paste sites, dark web forums, social media, and code repos, correlating indicators, mapping adversary infrastructure with tools…

mukul975/Anthropic-Cybersecurity-Skills34k—~3.8kAutomated safety check: PassApache-2.01 mo ago
50

Deploy MISP via Docker and configure feeds from sources like abuse.ch, AlienVault OTX, and CIRCL to aggregate, correlate, and distribute threat intelligence, including automated feed synchronization…

mukul975/Anthropic-Cybersecurity-Skills34k—~3.2kAutomated safety check: PassApache-2.01 mo ago
51

Builds automated threat intelligence feed integration pipelines connecting STIX/TAXII feeds, open-source threat intel, and commercial TI platforms into SIEM and security tools for real-time IOC…

mukul975/Anthropic-Cybersecurity-Skills34k—~2.8kAutomated safety check: PassApache-2.01 mo ago
52

Collects and synthesizes open-source intelligence (OSINT) about threat actors, malicious infrastructure, and attack campaigns using publicly available data sources, passive reconnaissance tools, and…

mukul975/Anthropic-Cybersecurity-Skills34k—~1.8kAutomated safety check: PassApache-2.01 mo ago
53

Evaluates and selects Threat Intelligence Platform (TIP) products based on organizational requirements including feed integration capability, STIX/TAXII support, workflow automation, analyst…

mukul975/Anthropic-Cybersecurity-Skills34k—~1.9kAutomated safety check: PassApache-2.01 mo ago
54

Implements external attack surface management (EASM) using Shodan, Censys, and ProjectDiscovery tools (subfinder, httpx, nuclei) for asset discovery, subdomain enumeration, service fingerprinting…

mukul975/Anthropic-Cybersecurity-Skills34k—~1.8kAutomated safety check: PassApache-2.01 mo ago
55

Create, validate, and share STIX 2.1 threat intelligence objects (indicators, malware, campaigns, relationships, bundles) using the stix2 Python library, and publish them over TAXII 2.1.

mukul975/Anthropic-Cybersecurity-Skills34k—~3.3kAutomated safety check: PassApache-2.01 mo ago
56

Build out a full CTI program around the six-phase threat intelligence lifecycle (direction, collection, processing, analysis, dissemination, feedback), including defining intelligence requirements…

mukul975/Anthropic-Cybersecurity-Skills34k—~3.8kAutomated safety check: PassApache-2.01 mo ago
57

Use AI/LLM-based reasoning with Sherlock, theHarvester, and SpiderFoot to correlate OSINT findings—usernames, emails, social profiles, domain records, breach databases, and dark-web mentions—into…

mukul975/Anthropic-Cybersecurity-Skills34k—~3.6kAutomated safety check: PassApache-2.01 mo ago
58

Automates Indicator of Compromise (IOC) enrichment by orchestrating lookups across VirusTotal, AbuseIPDB, Shodan, MISP, and other intelligence sources to provide contextual scoring and disposition…

mukul975/Anthropic-Cybersecurity-Skills34k—~4.2kAutomated safety check: PassApache-2.01 mo ago
59

Processes STIX 2.1 threat intelligence bundles delivered via TAXII 2.1 servers, normalizing objects into platform-native schemas and routing them to appropriate consuming systems.

mukul975/Anthropic-Cybersecurity-Skills34k—~1.7kAutomated safety check: PassApache-2.01 mo ago
60

A skill your agent uses when mapping a target's external attack surface or gathering OSINT — subdomain enumeration, attack-surface mapping (httpx/katana/JS secrets), subdomain takeover…

hypnguyen1209/offensive-claude388—~2.2kAutomated safety check: PassMIT13 days ago
61

Guidance for Azure Firewall — managed cloud-native L3-L7 stateful network firewall for centralised egress, east-west, and ingress control.

vinayaklatthe/microsoft-security-skills175—~1.7kAutomated safety check: PassMIT3 mo ago
62

Sparse-clue OSINT investigation methodology for extracting overlooked leads, connecting fragmented evidence, and testing explanations across sources.

affaan-m/ECC276k—~5.7kAutomated safety check: PassCC-BY-SA-4.0yesterday
63

Query a MISP (Malware Information Sharing Platform) instance via PyMISP to compute event statistics, IOC type breakdowns, threat actor galaxy clusters, and tag trends, and generate threat landscape…

mukul975/Anthropic-Cybersecurity-Skills34k—~597Automated safety check: PassApache-2.01 mo ago
64

Detects early-stage ransomware indicators in network traffic before encryption begins, including initial access broker activity, command-and-control beaconing, credential harvesting, reconnaissance…

mukul975/Anthropic-Cybersecurity-Skills34k—~3.7kAutomated safety check: PassApache-2.01 mo ago
65

Systematically collects, categorizes, and distributes indicators of compromise (IOCs) during and after security incidents to enable detection, blocking, and threat intelligence sharing.

mukul975/Anthropic-Cybersecurity-Skills34k—~2.7kAutomated safety check: PassApache-2.01 mo ago
66

Generates structured cyber threat intelligence reports at strategic, operational, and tactical levels tailored to specific audiences including executives, security operations teams, and technical…

mukul975/Anthropic-Cybersecurity-Skills34k—~1.9kAutomated safety check: PassApache-2.01 mo ago
67

Manages the end-to-end cyber threat intelligence lifecycle from planning and direction through collection, processing, analysis, dissemination, and feedback to ensure intelligence products meet…

mukul975/Anthropic-Cybersecurity-Skills34k—~1.6kAutomated safety check: PassApache-2.01 mo ago
68

Analyze IP address reputation using the Shodan API to identify open ports, running services, known vulnerabilities, and hosting context for threat intelligence enrichment and incident triage.

mukul975/Anthropic-Cybersecurity-Skills34k—~3kAutomated safety check: PassApache-2.01 mo ago
69

Enrich malware file hashes (MD5, SHA-1, SHA-256) using the VirusTotal API v3 to retrieve multi-engine detection rates, sandbox behavioral analysis, YARA rule matches, related indicators, and…

mukul975/Anthropic-Cybersecurity-Skills34k—~3.6kAutomated safety check: PassApache-2.01 mo ago
70

Automate OSINT collection with the SpiderFoot REST API and CLI (sf.py/spiderfoot-cli) across 200+ modules, selecting scan modes (footprint, investigate, passive) and parsing results for domains…

mukul975/Anthropic-Cybersecurity-Skills34k—~608Automated safety check: PassApache-2.01 mo ago
71

Uses PyMISP (the official MISP REST API library) to create events with structured IOCs (IPs, domains, hashes, URLs), enrich them with MITRE ATT&CK tags and galaxy clusters, manage sharing groups and…

mukul975/Anthropic-Cybersecurity-Skills34k—~776Automated safety check: PassApache-2.01 mo ago
72

Find and remove authorized personal information exposures from data brokers and people-search sites with a consent-gated local workflow.

CoWork-OS/CoWork-OS477—~2.9kAutomated safety check: PassMITyesterday
73

Export your entire Prospeo people search to CSV. An agent skill from growthenginenowoslawski/coldoutboundskills.

growthenginenowoslawski/coldoutboundskills753—~5kAutomated safety check: PassMIT5 days ago
74

Perform OSINT and external reconnaissance for approved targets.

SpecterOps/skills706—~813Automated safety check: PassApache-2.017 days ago
75

Detect transcription factor binding footprints in ATAC-seq using TOBIAS, HINT-ATAC, Wellington, or scprinter.

GPTomics/bioSkills1.2k2 repos~4.8kAutomated safety check: PassMIT1 mo ago
76

Expert malware analyst specializing in defensive malware research, threat intelligence, and incident response.

aiskillstore/marketplace4336 repos~1.7kAutomated safety check: PassNo licenceyesterday
77

Passive recon of subdomains, SSL certs, WHOIS, and DNS. An agent skill from Luciole-Studio/Misaka-Agent.

Luciole-Studio/Misaka-Agent1711 repo~1.1kAutomated safety check: PassMIT3 days ago
78

Gather and correlate open source intelligence from public sources for authorized investigations, threat intelligence, and attack surface assessment.

briiirussell/cybersecurity-skills413—~1.1kAutomated safety check: NotesMIT4 mo ago
79

Analyze TF motif accessibility variability across samples or single cells using chromVAR.

GPTomics/bioSkills1.2k2 repos~5.2kAutomated safety check: PassMIT1 mo ago
80

Zero friction. An agent skill from HKUDS/CLI-Anything.

HKUDS/CLI-Anything52k—~360Automated safety check: PassApache-2.019 days ago
81

Two-phase Apollo.io prospecting: free People Search to discover ICP-matching leads, then selective enrichment to reveal emails/phones (credits per contact).

gooseworks-ai/goose-skills1.2k1 repo~2kAutomated safety check: NotesMIT2 days ago
82

Shodan lookups: internet-connected devices, ports, services. An agent skill from taracodlabs/aiden.

taracodlabs/aiden852—~954Automated safety check: PassApache-2.027 days ago
83

External recon and OSINT pipeline - subdomain enum, live host discovery, URL crawl, JS analysis, nuclei scan.

Encod3d-Sec/TORCH329—~1.3kAutomated safety check: PassMIT1 mo ago
84

Automates the end-to-end detection engineering workflow in Google SecOps using MCP tools.

google/skills21k—~3.3kAutomated safety check: PassApache-2.0yesterday
85

Orchestrates the end-to-end bulk ATAC-seq pipeline from FASTQ to differential accessibility and TF footprints, chaining Nextera-aware fastp QC, Bowtie2 alignment, chrM removal, dedup, a single Tn5…

GPTomics/bioSkills1.2k1 repo~4.1kAutomated safety check: PassMIT1 mo ago
86

Conduct proactive, hypothesis-driven threat hunting. An agent skill from dandye/ai-runbooks.

dandye/ai-runbooks127—~1.4kAutomated safety check: PassApache-2.01 mo ago
87

Open-source intelligence gathering - company repository enumeration, secret scanning, git history analysis, employee footprint, and code exposure discovery.

transilienceai/communitytools563—~494Automated safety check: NotesMIT2 mo ago
88

OSINT-based technology stack identification. An agent skill from transilienceai/communitytools.

transilienceai/communitytools563—~826Automated safety check: PassMIT2 mo ago
89

Social media monitoring, narrative tracking, and OSINT. An agent skill from jamditis/claude-skills-journalism.

jamditis/claude-skills-journalism416—~7.1kAutomated safety check: PassMIT6 days ago
90

Multi-source threat intelligence and vulnerability lookup. An agent skill from ptn1411/skill.

ptn1411/skill219—~1.1kAutomated safety check: PassNo licence19 days ago
91

Monitors dark web forums, marketplaces, paste sites, and ransomware leak sites for mentions of organizational assets, leaked credentials, threatened attacks, and threat actor communications to…

mukul975/Anthropic-Cybersecurity-Skills34k—~2.1kAutomated safety check: WarnApache-2.01 mo ago
92

Security engineering router for penetration testing, code auditing, red/blue/purple team operations, threat intelligence, and vulnerability research.

telagod/code-abyss244—~581Automated safety check: PassMIT2 mo ago
93

Triage ASM/recon output for ownership before testing — separate the target's real assets from namespace-collision noise.

elementalsouls/Claude-BugHunter4.8k—~1.9kAutomated safety check: NotesMITyesterday
94

A skill your agent uses when asked to analyze, investigate, or report on honeypot server security.

SCStelz/security-investigator249—~5.8kAutomated safety check: PassMIT2 days ago
95

Turn a published threat-intelligence article into a tested threat-hunting campaign.

SCStelz/security-investigator249—~6.9kAutomated safety check: PassMIT2 days ago
96

Build and maintain a scored Total Addressable Market (TAM) using Apollo Company Search.

gooseworks-ai/goose-skills1.2k1 repo~1.4kAutomated safety check: NotesMIT2 days ago